openssl/ssl
Viktor Dukhovni 8d887efa2e Better invalid SNI name error handling
Also report an SSL_dane_enable error when the basedomain is an
invalid SNI name.  Avoid side-effects when such a name is valid
with X509_VERIFY_PARAM_set1_host(), as e.g. with an empty name, by
setting the SNI name first.

Reviewed-by: Rich Salz <rsalz@openssl.org>
2016-01-16 17:15:42 -05:00
..
record Adapt all EVP_CIPHER_CTX users for it becoming opaque 2016-01-12 13:52:22 +01:00
statem Adapt all EVP_CIPHER_CTX users for it becoming opaque 2016-01-12 13:52:22 +01:00
bio_ssl.c
d1_lib.c Regenerate SSL record/statem error strings 2016-01-10 20:18:05 -05:00
d1_msg.c
d1_srtp.c
install-ssl.com
Makefile.in Move Makefiles to Makefile.in 2016-01-12 16:26:56 -05:00
methods.c Protocol version selection and negotiation rewrite 2016-01-02 10:49:06 -05:00
packet_locl.h Instead of a local hack, implement SIZE_MAX in numbers.h if it's missing 2016-01-02 21:11:02 +01:00
s3_cbc.c
s3_enc.c Adapt all EVP_CIPHER_CTX users for it becoming opaque 2016-01-12 13:52:22 +01:00
s3_lib.c Empty SNI names are not valid 2016-01-16 17:15:28 -05:00
s3_msg.c
ssl_algs.c Load module in SSL_library_init 2015-12-22 15:14:14 +00:00
ssl_asn1.c Rename some BUF_xxx to OPENSSL_xxx 2015-12-16 16:14:49 -05:00
ssl_cert.c EDH >= 1024 bits even at security level 0 2016-01-14 11:05:24 -05:00
ssl_ciph.c GH528: "cipher -v" output is confusing. 2016-01-11 18:54:49 -05:00
ssl_conf.c Allow disabling the min and max version 2016-01-10 13:04:55 +01:00
ssl_err2.c
ssl_err.c Regenerate SSL record/statem error strings 2016-01-10 20:18:05 -05:00
ssl_lib.c Better invalid SNI name error handling 2016-01-16 17:15:42 -05:00
ssl_locl.h RT4232: Extra space in help message. 2016-01-14 11:32:18 -05:00
ssl_mcnf.c Correct missing prototype 2015-12-30 14:57:16 +01:00
ssl_rsa.c Use X509_get0_pubkey where appropriate 2015-12-31 18:44:46 +00:00
ssl_sess.c Add lh_doall_arg inlining 2016-01-11 17:50:27 +00:00
ssl_stat.c
ssl_txt.c
ssl_utst.c
ssl-lib.com
t1_enc.c Adapt all EVP_CIPHER_CTX users for it becoming opaque 2016-01-12 13:52:22 +01:00
t1_ext.c Rename some BUF_xxx to OPENSSL_xxx 2015-12-16 16:14:49 -05:00
t1_lib.c Adapt all EVP_CIPHER_CTX users for it becoming opaque 2016-01-12 13:52:22 +01:00
t1_reneg.c
t1_trce.c Remove fixed DH ciphersuites. 2015-12-19 16:14:51 +00:00
tls_srp.c Rename some BUF_xxx to OPENSSL_xxx 2015-12-16 16:14:49 -05:00